Vulnerabilities > Panasonic > Fpwin PRO > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-07-09 CVE-2021-32972 XXE vulnerability in Panasonic Fpwin PRO 7.5.0.1
Panasonic FPWIN Pro, all Versions 7.5.1.1 and prior, allows an attacker to craft a project file specifying a URI that causes the XML parser to access the URI and embed the contents, which may allow the attacker to disclose information that is accessible in the context of the user executing software.
network
panasonic CWE-611
4.3
2021-01-26 CVE-2020-16236 Out-of-bounds Read vulnerability in Panasonic Fpwin PRO
FPWIN Pro is vulnerable to an out-of-bounds read vulnerability when a user opens a maliciously crafted project file, which may allow an attacker to remotely execute arbitrary code.
network
panasonic CWE-125
6.8
2016-05-12 CVE-2016-4499 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Panasonic Fpwin PRO
Heap-based buffer overflow in Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service (application crash) via unspecified vectors.
4.4
2016-05-12 CVE-2016-4498 Improper Input Validation vulnerability in Panasonic Fpwin PRO
Panasonic FPWIN Pro 5.x through 7.x before 7.130 accesses an uninitialized pointer, which allows local users to cause a denial of service or possibly have unspecified other impact via unknown vectors.
network
panasonic CWE-20
6.8
2016-05-12 CVE-2016-4497 Improper Input Validation vulnerability in Panasonic Fpwin PRO
Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."
network
panasonic CWE-20
6.8
2016-05-12 CVE-2016-4496 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Panasonic Fpwin PRO
Panasonic FPWIN Pro 5.x through 7.x before 7.130 allows local users to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by triggering a crafted index value, as demonstrated by an integer overflow.
4.4